StackRadar

CVE-2026-5704

Medium

Advisory

Published 6 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,264
of 17,787 indexed, latest versions
Container images
2,234
deployed by those charts
Fix available
2 of 2
affected packages

Security update for tar

Carried by container images the latest versions of 2,264 of 17,787 indexed charts deploy, on 2,234 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+28 more1.27.1-1ubuntu0.1+esm7, 1.28-2.1ubuntu0.2+esm6, 1.29b-2ubuntu0.4+esm4, 1.30+dfsg-7ubuntu0.20.04.4+esm3+4 more2,228
tarrpm1.34-150000.3.34.1, 1.34-150000.3.37.11.34-150000.3.42.16
OSV records
DEBIAN-CVE-2026-5704UBUNTU-CVE-2026-5704ECHO-6544-7e09-569cSUSE-SU-2026:2714-1
Also known as
USN-8477-1, USN-8477-2, USN-8477-3

Charts affected

2,264 by stars
ChartLatestAffected imagesRadar Score
plexbryanalves0.5.01 of 1See more

plex bryanalves 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

6,746
tautullibryanalves0.1.01 of 1See more

tautulli bryanalves 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
tautulli/tautulli:latest670e68dd9efc
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,886
node-appbryopsida0.5.12 of 2See more

node-app bryopsida 0.5.1

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

14,446
nginx-chartbtrepoVerified publisher0.1.01 of 1See more

nginx-chart btrepo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
category-microservicebusi-adsVerified publisher1.0.01 of 2See more

category-microservice busi-ads 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/category:distributed02fc234353a9
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

11,947
gotenbergbysamioVerified publisher0.2.01 of 1See more

gotenberg bysamio 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8-chromiuma40f92d7419a
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

8,991
mariadbbysamioVerified publisher1.0.21 of 1See more

mariadb bysamio 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/mariadb:12.0.2607835cd628b
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,942
duoauthproxy-radius-simplecaerus0.1.01 of 1See more

duoauthproxy-radius-simple caerus 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ethanbergstrom/duoauthproxy:5.5.0345c2a46c103
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

3,012
rediscagriekinVerified publisher1.5.21 of 2See more

redis cagriekin 1.5.2

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:8.8.1-trixie3eafabb4c93f
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,369
ct-singlecalltelemetry0.8.41 of 7See more

ct-single calltelemetry 0.8.4

1 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
calltelemetry/web:0.8.1-rc7205d13269e350
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

10,442
pagescamden-pages1.0.02 of 3See more

pages camden-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,233
camellia-redis-proxycamellia-redis-proxy1.4.01 of 2See more

camellia-redis-proxy camellia-redis-proxy 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

7,329
geoservercamptocamp20.0.37 of 12See more

geoserver camptocamp2 0.0.3

7 of the 12 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
library/postgres:122f2a8c2a7d10
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

88,377
httpd-ldapauth-proxycamptocamp31.0.21 of 1See more

httpd-ldapauth-proxy camptocamp3 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/httpd:2.4.631ae8051591a5
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,165
nginx-s3-gatewaycamptocamp31.0.01 of 1See more

nginx-s3-gateway camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss-202503313db8145349a3
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,051
pgbouncer-tlscamptocamp32.3.02 of 2See more

pgbouncer-tls camptocamp3 2.3.0

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/haproxy:3.2de601ccc9a79
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/camptocamp/pgbouncer:latest19dc5663cac4
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,856
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
puppet/puppet-agent:7.14.00b6fd9a6b7da
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4

Open the chart page →

6,158
puppetservercamptocamp31.0.11 of 2See more

puppetserver camptocamp3 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

5,932
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

10,318
caninecanine0.1.101 of 7See more

canine canine 0.1.10

1 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/caninehq/canine:latesta058034ca006
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

13,363
pagescarina-pages1.0.02 of 3See more

pages carina-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,233
pagescarmel-pages-dell1.0.02 of 3See more

pages carmel-pages-dell 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,233
cassandra-clustercassandra-clusterVerified publisher0.1.01 of 1See more

cassandra-cluster cassandra-cluster 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/cassandra:3.11.10b095ff3248c6
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

9,521
castai-hibernatecastaiVerified publisher0.2.121 of 1See more

castai-hibernate castai 0.2.12

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
castai/hibernate:v0.14da62858c8381
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,158
catalyst-agentscatalyst-agents0.1.301 of 18See more

catalyst-agents catalyst-agents 0.1.30

1 of the 18 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

14,865
getoutlinecfi20171.2.02 of 4See more

getoutline cfi2017 1.2.0

2 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:18.06f3e42ad37de
tar@1.35+dfsg-3.1
no fix listed
library/redis:8.2.3d31852005202
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,329
opencvecfi20170.1.25 of 7See more

opencve cfi2017 0.1.2

5 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:trixie05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed
library/postgres:18.06f3e42ad37de
tar@1.35+dfsg-3.1
no fix listed
library/redis:7.2-bookworm74566c6910d1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

14,964
nginx-chartchanhk10.1.01 of 1See more

nginx-chart chanhk1 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
clechaosnative0.2.71 of 6See more

cle chaosnative 0.2.7

1 of the 6 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
litmuschaos/mongo:4.2.899961210d467
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

16,395
charon-relaycharonOfficialVerified publisher0.8.01 of 2See more

charon-relay charon 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,409
dv-podcharonOfficialVerified publisher0.19.12 of 5See more

dv-pod charon 0.19.1

2 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
tar@1.35+dfsg-3.1
no fix listed
sigp/lighthouse:v8.1.344aa773dcf27
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

7,457
helioscharonVerified publisher0.1.51 of 1See more

helios charon 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
obolnetwork/helios:e10e753cb7e97d39d46
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,127
chart-dnazarenochart-dnazareno0.1.01 of 3See more

chart-dnazareno chart-dnazareno 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.16e75aa8f767c
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,528
kitchenowlchart-kitchenowl0.1.121 of 2See more

kitchenowl chart-kitchenowl 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
tombursch/kitchenowl-backend:v0.7.8b48e4ab727cd
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,783
calibre-webcharts-derwitt-devVerified publisher1.1.21 of 1See more

calibre-web charts-derwitt-dev 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,919
home-assistant-otbrcharts-derwitt-devVerified publisher2.1.31 of 1See more

home-assistant-otbr charts-derwitt-dev 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/homeassistant-otbr:4.2.31b53b0b3488e
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,358
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
tar@1.29b-2ubuntu0.4
1.29b-2ubuntu0.4+esm4

Open the chart page →

12,804
paperless-ngxcharts-derwitt-devVerified publisher2.1.41 of 1See more

paperless-ngx charts-derwitt-dev 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,644
chat-searchchat-searchVerified publisher0.1.71 of 1See more

chat-search chat-search 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/hemslo/chat-search:latest39d48995a5bd
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,048
opensipschetan-opensips0.1.01 of 1See more

opensips chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
chetangautamm/repo:Opensips_Buildb4b94155ff5a
tar@1.27.1-1ubuntu0.1
1.27.1-1ubuntu0.1+esm7

Open the chart page →

30,163
sippchetan-opensips0.1.01 of 1See more

sipp chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
chetangautamm/repo:sipp.v3e7f7049e1544
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

12,531
mysqld-exporterchoerodon0.1.01 of 1See more

mysqld-exporter choerodon 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
mcp-for-argocdchristianhuthVerified publisher2.0.01 of 1See more

mcp-for-argocd christianhuth 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/argoproj-labs/mcp-for-argocd:v0.9.0dffc6c719d86
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,958
polrchristianhuthVerified publisher4.3.01 of 2See more

polr christianhuth 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,936
proxysqlchristianhuthVerified publisher3.1.11 of 1See more

proxysql christianhuth 3.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
proxysql/proxysql:3.0.110e95d1b7cc32
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,277
timetaggerchristianhuthVerified publisher2.2.01 of 1See more

timetagger christianhuth 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,902
arbitrumchronicleVerified publisher0.3.41 of 1See more

arbitrum chronicle 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,006
basechronicleVerified publisher0.0.81 of 1See more

base chronicle 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

4,858
rpc-routerchronicleVerified publisher0.2.91 of 1See more

rpc-router chronicle 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
drpcorg/dshackle:0.54.08858fae1859d
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

6,487
tor-proxychronicleVerified publisher0.1.01 of 1See more

tor-proxy chronicle 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
btcpayserver/tor:0.4.8.10e9585b68dc6b
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

3,051

Container images carrying it

2,234 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
tar@1.28-2.1ubuntu0.2
1.28-2.1ubuntu0.2+esm6
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
actualbudget/actual-server:26.9.0552beab3dec8
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
alazidis/kube-netlag:1.1.00e8c84152201
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
2
apache/nifi-registry:1.26.07cdfd8deec92
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
2
apache/rocketmq:5.4.0319cd8a81ed1
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/etcd:latest99b408c15272
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/redis:latest5927ff3702df
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnami/minideb:latestab4d5b45116e
tar@1.35+dfsg-3.1
no fix listed
2
blockstack/stacks-core:3.2.0.0.0f79944317326
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
tar@1.35+dfsg-3.1
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
tar@1.34+dfsg-1.2
no fix listed
2
chromedp/headless-shell:148.0.7778.97313ed7255ae1
tar@1.35+dfsg-3.1
no fix listed
2
clickhouse/clickhouse-server:24.2ed9640bfff07
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
dagster/user-code-example:1.13.225947f9ae481c
tar@1.35+dfsg-3.1
no fix listed
2
eqalpha/keydb:latest6537505c4235
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
tar@1.35+dfsg-3.1
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
tar@1.35+dfsg-3.1
no fix listed
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
tar@1.34+dfsg-1.2
no fix listed
2
gotenberg/gotenberg:8.36.087c16b9f3642
tar@1.35+dfsg-3.1
no fix listed
2
gotenberg/gotenberg:8:8.37.0f29984bd1e22
tar@1.35+dfsg-3.1
no fix listed
2
gradiant/ueransim:3.2.6015b30d5fa0f
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
2
grafana/alloy:v1.8.17790f6f7fbd8
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
2
grafana/alloy:v1.12.2f94b1c82957a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
2
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
tar@1.35+dfsg-3.1
no fix listed
2
graviteeio/apim-management-api:4.12.19-debian27374522cd04
tar@1.35+dfsg-3.1
no fix listed
2
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
tar@1.34+dfsg-1.2
no fix listed
2
honestica/kube-iptables-tailer:master-91a393242fb939
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
hookiesolutions/webhookie:latest0629694246ba
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
2
ilum/api:6.7.3624fd09528c8
tar@1.35+dfsg-3.1
no fix listed
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.